You have commented 339 times on Rantburg.

Your Name
Your e-mail (optional)
Website (optional)
My Original Nic        Pic-a-Nic        Sorry. Comments have been closed on this article.
Bold Italic Underline Strike Bullet Blockquote Small Big Link Squish Foto Photo
Government
Wikileaks Drops Vault 8: CIA Wrote Code Impersonating Russian Anti-Virus Giant--Destroys DNC Hacking Claim?
2017-11-09
9 November 2017, WikiLeaks publishes the source code and development logs to Hive, a major component of the CIA infrastructure to control its malware. WikiLeaks reveals CIA wrote code to impersonate Kaspersky Labs anti-virus company.

Hive solves a critical problem for the malware operators at the CIA. Even the most sophisticated malware implant on a target computer is useless if there is no way for it to communicate with its operators in a secure manner that does not draw attention. Using Hive even if an implant is discovered on a target computer, attributing it to the CIA is difficult by just looking at the communication of the malware with other servers on the internet. Hive provides a covert communications platform for a whole range of CIA malware to send exfiltrated information to CIA servers and to receive new instructions from operators at the CIA.

Hive can serve multiple operations using multiple implants on target computers. Each operation anonymously registers at least one cover domain (e.g. "perfectly-boring-looking-domain.com") for its own use. The server running the domain website is rented from commercial hosting providers as a VPS (virtual private server) and its software is customized according to CIA specifications. These servers are the public-facing side of the CIA back-end infrastructure and act as a relay for HTTP(S) traffic over a VPN connection to a "hidden" CIA server called 'Blot'. Also see Wiki.
Posted by:JohnQC

#9  It's ALWAYS a leak.
Posted by: Bright Pebbles   2017-11-09 18:36  

#8  How about the last 20 months?
Posted by: Publius Punter   2017-11-09 16:38  

#7  I think that a thumbdrive is most likely but I also think it might be some sort of astroturf where the deep state orgs are in league with the Dems in an attempt to blame the Russians.

But then the last 20 years have made me much more cynical.
Posted by: AlanC   2017-11-09 16:04  

#6  IIRC the download speed indicated a thumbdrive, not a net connection
Posted by: Frank G   2017-11-09 14:53  

#5  I still think it an inside download to a thumb drive job--not an outside hacking.
Posted by JohnQC


I suspect so as well John. Printing and scanning the volume which was discussed would be quite labor intense.
Posted by: Besoeker   2017-11-09 14:33  

#4  Maybe Brazile is going with the hack meme because she is afraid. It's been said she dedicated her book to Seth Rich. She also said she woke up and paid attention after seeing the James O'keefe videos back during the election season. Hate to blow the dust off the archives at PJ Media but... I recall a couple of donk operatives on the vid, Foval and Creamer. One of them alluded to dark and sinister things that could be done if necessary.
Posted by: JohnQC   2017-11-09 14:17  

#3  I still think it an inside download to a thumb drive job--not an outside hacking.
Posted by: JohnQC   2017-11-09 14:08  

#2  CIA Wrote Code Impersonating Russian Anti-Virus Giant--Destroys DNC Hacking Claim?

I seem to recall someone here suggesting such a possibility some months ago. Wudn't me, one of the 165lb brain tech fellas.
Posted by: Besoeker   2017-11-09 14:01  

#1  #wikileaks.org/vault8/
Posted by: JohnQC   2017-11-09 13:47  

00:00